RSS   Vulnerabilities for 'Intense pc firmware'   RSS

2017-07-25
 
CVE-2017-9457

 

 
Intense PC Phoenix SecureCore UEFI firmware does not perform capsule signature validation before upgrading the system firmware. The absence of signature validation allows an attacker with administrator privileges to flash a modified UEFI BIOS.

 
2017-06-06
 
CVE-2017-8083

CWE-862
 

 
CompuLab Intense PC and MintBox 2 devices with BIOS before 2017-05-21 do not use the CloseMnf protection mechanism for write protection of flash memory regions, which allows local users to install a firmware rootkit by leveraging administrative privileges.

 

 >>> Vendor: Compulab 2 Products
Intense pc firmware
Mintbox 2 firmware


Copyright 2024, cxsecurity.com

 

Back to Top